-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Fri, 24 Apr 2026 14:03:13 +1200
Source: openjdk-17
Built-For-Profiles: noudeb
Architecture: source
Version: 17.0.19+10-1
Distribution: unstable
Urgency: medium
Maintainer: OpenJDK Team <openjdk-17@packages.debian.org>
Changed-By: Vladimir Petko <vladimir.petko@canonical.com>
Changes:
openjdk-17 (17.0.19+10-1) unstable; urgency=medium
.
* OpenJDK 17.0.19 release, build 10.
- CVEs:
+ CVE-2026-22016: 8370529: Enhance Path Factories Redux
+ CVE-2026-34282: 8374557: Enhance TLS connection handling
+ CVE-2026-22021: 8371830: Enhance certificate chain validation
+ CVE-2026-22013: 8370615: Improve Kerberos credentialing
+ CVE-2026-23865: 8379158: Update FreeType to 2.14.2
+ CVE-2026-22018: 8370986: Enhance Zip file reading
+ CVE-2026-22007: 8369575: Enhance crypto algorithm support
+ CVE-2026-34268: 8371935: Enhance key generation
* d/rules: Check generated files only on amd64. This resolves riscv64
ftbfs, as some architectures change with_check flag.
* d/t/problems.csv: Fix typo in loong64 excluded tests lists.
* Add common GPL and Apache license headers to copyright generator.
* d/copyright: Regenerate.
Checksums-Sha1:
e8ec898b422bb45dae43b604255ef4acb8d6b027 4855 openjdk-17_17.0.19+10-1.dsc
f757f831f55051a51c3dd670ea0368111b23c53a 613408 openjdk-17_17.0.19+10.orig-googletest.tar.xz
0622f36af51bdaced7aa60c6b74f2a6fe8b80efb 63987308 openjdk-17_17.0.19+10.orig.tar.xz
fd7fa37680a77246e84932c7ae3ca50e8a3af3fa 218684 openjdk-17_17.0.19+10-1.debian.tar.xz
21e8292d0a5577859627ca22ddc4286fac579e4c 18566 openjdk-17_17.0.19+10-1_source.buildinfo
Checksums-Sha256:
838fcaaeff6b6e7ad0b8f5942aa89c897c78924002357597eb2a58769b0c5f71 4855 openjdk-17_17.0.19+10-1.dsc
6e6699c442cd6bc008140d159b43a7a39bb811d1ecd380cf3b707cc535e04393 613408 openjdk-17_17.0.19+10.orig-googletest.tar.xz
7a61915b168dfb9b45413140d78e38dc5b5250d99d1d99fef7136bf9fd45a07c 63987308 openjdk-17_17.0.19+10.orig.tar.xz
f0f23788448af6fb901473ec4efa22268a760a61969ac12839bfc61d2488ff86 218684 openjdk-17_17.0.19+10-1.debian.tar.xz
f15900f74b3df5dceb1c698f0bdaa0110d5003dc81cefd588d05305f0593b4ed 18566 openjdk-17_17.0.19+10-1_source.buildinfo
Files:
61c8bf77d667c86971967df28c803590 4855 java optional openjdk-17_17.0.19+10-1.dsc
ae1c58d38d39133ebcdc47e09d77a661 613408 java optional openjdk-17_17.0.19+10.orig-googletest.tar.xz
4a13f235973e30cd1f0d9392863dbc00 63987308 java optional openjdk-17_17.0.19+10.orig.tar.xz
fa3f0c42467f24cb967bb6287d4e90ed 218684 java optional openjdk-17_17.0.19+10-1.debian.tar.xz
0dd31f0d5a60f0a4edb20f675205b9c7 18566 java optional openjdk-17_17.0.19+10-1_source.buildinfo
-----BEGIN PGP SIGNATURE-----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=SThh
-----END PGP SIGNATURE-----